Skip to main content

Vendor/product archive

smartbear / soapui CVEs

Beta · best-effort

4 CVEs tagged to smartbear / soapui1 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2024-7565

Published Nov 22, 2024

SMARTBEAR SoapUI unpackageAll Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installatio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-12180

Published Feb 5, 2020

An issue was discovered in SmartBear ReadyAPI through 2.8.2 and 3.0.0 and SoapUI through 5.5. When opening a project, the Groovy "Load Script" is automatically executed. This allo…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-16670

Published Feb 19, 2018

The project import functionality in SoapUI 5.3.0 allows remote attackers to execute arbitrary Java code via a crafted request parameter in a WSDL project file.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-1202

Published Jan 25, 2014

The WSDL/WADL import functionality in SoapUI before 4.6.4 allows remote attackers to execute arbitrary Java code via a crafted request parameter in a WSDL file.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1